Success Stories

Two-Factor Authentication For Vaccination Centers | National Health | Nitrokey FIDO2

Nitrokey GmbH has equipped all Corona vaccination centers in a major European country with Nitrokey FIDO2 devices. This includes hundreds of vaccination centers that can now securely access a central management portal using two-factor authentication, increasing data protection for every vaccinated person. Nitrokey GmbH convinces here by:
  • A secure FIDO2 device, produced in Europe
  • A European company with direct contact persons, fast processes and high solution readiness
  • Flexible and fast fulfillment service for hundreds of shipments including returns and problem management
Multifactor Authentication Of Employees | Commerce | Nitrokey FIDO2

The customer is a German medium-sized company with branches abroad. For secure multifactor authentication of employees in Germany and abroad, they were equipped with Nitrokey FIDO2. The ease of use contributes to high user acceptance and security. The existing Microsoft Azure Active Directory (MS AAD) enabled an efficient rollout. The Nitrokeys produced in Germany guarantee a high level of trustworthiness.

PCI DSS Compliance | Financial Industry | Nitrokey Pro

The customer is a leading global credit card provider. For PCI DSS compliant operation, the hard disks of critical servers are fully encrypted. The keys for this are securely stored in several Nitrokey Pro. These are connected to separate servers and are connected to the critical servers via a specially developed but simple network interface. The entire system is designed redundantly and was developed, rolled out and tested in just a few days. The use of Nitrokey Pro thus provides a reliable, secure and cost-effective solution for achieving PCI DSS compliance.

PKI Of An IoT Platform | Production And Electronics | Nitrokey HSM

The customer is a leading international manufacturer of lamps and offers an open IoT platform for this purpose. All IoT devices of this platform connect via TLS to servers that are authenticated by their X.509 certificates. Since a compromise of these certificates or keys could allow the compromise of all IoT devices, their security is elementary. For this reason, several Nitrokey HSM are used to securely store the corresponding cryptographic keys. Using encrypted key backups of Nitrokey HSM, a PKI can be implemented cost-effectively, with reliable operation guaranteed for several decades.

Measurement Data Acquisition In Underwater Drones | Research And Armament | Nitrokey Storage

The customer develops underwater drones for the military and civil sector. In the civil underwater drones Nitrokey Storage is used to store measured data reliably and safely. Special Nitrokey Storage with a capacity of up to 400 GB is used for this purpose. Nitrokey's open source tools allow an easy and flexible integration of PIN activation and locking into the control system of the underwater drone. Thus, measurement data remains secure at all times, even if the underwater drone is lost.

Protection Of Vending Machines | Production And Electronics | Nitrokey Start

The customer is an internationally operating manufacturer of betting machines. To provide the machines with a non-clonable cryptographic identity, Nitrokey Start is installed. This is used to encrypt sensitive data and program code and to implement secure firmware updates. By means of Nitrokey Start, security is guaranteed at a reasonable price, even for high volumes.

Production Of Payment Terminals | Financial Industry And Electronics | NitroPad

The customer is an internationally operating manufacturer of payment terminals. The payment terminals are produced by one of the world's largest contract manufacturers for computers. In the security-critical production NitroPads are used as control computers. For this purpose, NitroPads without WLAN interface and NitroPads with WLAN interface are used specifically where they are needed. This reduces the potential attack surface and significantly increases security.

Training Of Journalists In Digital Security | NGO | Nitrokey FIDO2

An internationally renowned NGO dedicated to protecting press freedom provides Nitrokey FIDO2 to its grantees. Nitrokey FIDO2 enables high-quality two-factor authentication and passwordless logins to prevent user account intrusions and identity theft. The training program will provide participants with practical knowledge to better protect themselves from digital attacks in their journalistic work. The aim is for the journalists to pass on the knowledge they have learned to their colleagues during their assignments in war and crisis zones. Nitrokey is proud to contribute to greater digital security for media professionals.

Protection Against Supply Chain Attacks | Software Development | Nitrokey Start And Nitrokey Pro 2

Several major open source projects allow their developers to use Nitrokey devices to secure their work. For example, the Linux Foundation provides free Nitrokeys to developers of the official Linux kernel. Likewise, the Linux distributions Gentoo and Arch provide their developers with free Nitrokeys. Nitrokeys are used in particular for SSH access to git and package servers, for the signature of the source code and for the software signature. By preventing malicious code from being injected into the software, they effectively protect against software supply chain attacks.

Signing in Android App Store | IT | Nitrokey HSM 2

F-Droid is the largest open source and free software app store for Android. The expected lifetime of the signing keys being used is many years which makes their secure and permanent storage essential. The Nitrokey HSM 2 is integrated into the store's management software for secure and automated app publishing. It is also used by Guardian Project which operates its own F-Droid repository. The Nitrokey HSM has been integrated via PKCS#11 with standard signing tools apksigner and jarsigner (Java). F-Droid also provides a solution to maintain thousands of signing keys using only one (or a few) Nitrokey HSM. In this setup, the keys are stored encrypted outside the Nitrokey HSM using a key wrap method, then loaded into the device as needed. This setup can easily run on any computer, and it can be fully offline or run with no remote access in an automated fashion.